Senior CorpSec Analyst

Clio
Vancouver, Burnaby, Calgary, Toronto
Workplace: HybridFull timeCAD 104,500 - 141,500 annuallyFunction: Solutions Engineering & Sales EngineeringExperience: 5-8 yearsSkills: ["Written communication","Incident leadership","Coaching","Problem-solving","Working with ambiguity"]

Lead end-to-end security investigations and incident response for medium- and high-severity events, serving as incident commander when needed. Own detection engineering across the corporate security stack—tuning DLP, EDR, phishing, SIEM, and SSO/IdP signals—then translating findings into durable runbooks, controls, and automations. Partner across IT Systems, Application Security, Compliance, and IT Services to improve detection, response quality, and operational health, including AI-enabled security approaches.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Clio
Clio
2 months ago

Senior CorpSec Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 17 days agoStatus: Live

Job Summary

Lead end-to-end security investigations and incident response for medium- and high-severity events, serving as incident commander when needed. Own detection engineering across the corporate security stack—tuning DLP, EDR, phishing, SIEM, and SSO/IdP signals—then translating findings into durable runbooks, controls, and automations. Partner across IT Systems, Application Security, Compliance, and IT Services to improve detection, response quality, and operational health, including AI-enabled security approaches.
Location: Vancouver, Burnaby, Calgary, Toronto
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering
Seniority: Mid level

Key Responsibilities

  • •Lead investigations and incident response for medium- and high-severity security events from triage through resolution and post-incident review.
  • •Own detection engineering across the corporate security stack, including tuning DLP, EDR, phishing templates, remediations, and SSO/IdP signals; build correlation rules and reduce false positives.
  • •Perform root-cause analysis after incidents and near-misses, and translate findings into durable runbooks, controls, and tooling changes.
  • •Build and maintain automations and integrations (e.g., auto-remediation playbooks, signal enrichment, evidence collection pipelines).
  • •Drive cross-team initiatives and support security compliance evidence pipelines for SOC 2, ISO 27001, GovRAMP, and PCI-DSS.

Pay and Benefits

Salary: CAD 104,500 - 141,500 annually
Perks:Health InsuranceDentalVisionRrsp MatchingCounseling BenefitPaid Leave

Key Requirements

  • •5–8 years of hands-on experience in security operations, detection engineering, or incident response.
  • •Deep hands-on experience configuring, tuning, and operating in production at least three of: EDR, DLP, phishing platforms, SIEM, or Google Workspace security controls.
  • •Demonstrated experience leading security incidents end-to-end as incident commander.
  • •Track record of root-cause investigation and translating fixes into durable controls or automations.
  • •Strong written communication for runbooks, post-incident reviews, and decisions, and ability to coach junior analysts.
Experience:5-8 yearsSecurity operationsDetection engineeringIncident responseSecurity compliance
Skills:Written communicationIncident leadershipCoachingProblem-solvingWorking with ambiguity
Certifications:CISSPCISMGCIHGCIACompTIA Security+
Tech Stack:DLPEDRPhishingSIEMSSOIdPSOARGoogle WorkspaceMDMPythonBashPowerShellAIDetection engineeringDetection-as-code

Company Brief

Clio
Provides cloud-based practice management, client intake, billing, and legal productivity software for law firms. Clio helps legal professionals manage cases, documents, timekeeping, and payments through an integrated SaaS platform.
Industry: LegalTech
Headquarters: Vancouver, Canada
Founded: 2008
WebsiteLinkedIn